2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28039 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-28035 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-28033 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-28032 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-28030 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-28029 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-28028 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-25937 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-25936 | MEDIUM | 6.7 | 0.2% | Jun 23, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator ... |
| CVE-2023-33299 | CRITICAL | 9.8 | 24.3% | Jun 23, 2023 | A deserialization of untrusted data in Fortinet FortiNAC below 7.2.1, below 9.4.3, below 9.2.8 and all earlier versions ... |
| CVE-2023-32464 | LOW | 3.3 | 0.2% | Jun 23, 2023 | Dell VxRail, versions prior to 7.0.450, contain an improper certificate validation vulnerability. A high privileged rem... |
| CVE-2023-32463 | HIGH | 7.5 | 0.5% | Jun 23, 2023 | Dell VxRail, version(s) 8.0.100 and earlier contain a denial-of-service vulnerability in the upgrade functionality. A r... |
| CVE-2023-31469 | HIGH | 8.8 | 1.1% | Jun 23, 2023 | A REST interface in Apache StreamPipes (versions 0.69.0 to 0.91.0) was not properly restricted to admin-only access. Th... |
| CVE-2023-35801 | HIGH | 8.1 | 1.5% | Jun 23, 2023 | A directory traversal vulnerability in Safe Software FME Server before 2022.2.5 allows an attacker to bypass validation ... |
| CVE-2023-23344 | MEDIUM | 6.5 | 0.4% | Jun 23, 2023 | A permission issue in BigFix WebUI Insights site version 14 allows an authenticated, unprivileged operator to access an ... |
| CVE-2023-36193 | HIGH | 7.8 | 0.3% | Jun 23, 2023 | Gifsicle v1.9.3 was discovered to contain a heap buffer overflow via the ambiguity_error component at /src/clp.c. |
| CVE-2023-36192 | HIGH | 7.8 | 0.3% | Jun 23, 2023 | Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_ws_check_packet at /src/capture.... |
| CVE-2023-36191 | — | — | — | Jun 23, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-33141 | HIGH | 7.5 | 2.2% | Jun 23, 2023 | Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability |
| CVE-2023-34462 | MEDIUM | 6.5 | 2.5% | Jun 22, 2023 | Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performan... |
| CVE-2023-34241 | HIGH | 7.1 | 1.4% | Jun 22, 2023 | OpenPrinting CUPS is a standards-based, open source printing system for Linux and other Unix-like operating systems. Sta... |
| CVE-2023-34110 | LOW | 2.7 | 0.7% | Jun 22, 2023 | Flask-AppBuilder is an application development framework, built on top of Flask. Prior to version 4.3.2, an authenticate... |
| CVE-2023-28016 | MEDIUM | 6.1 | 0.3% | Jun 22, 2023 | Host Header Injection vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to s... |
| CVE-2023-28006 | HIGH | 7.8 | 0.1% | Jun 22, 2023 | The OSD Bare Metal Server uses a cryptographic algorithm that is no longer considered sufficiently secure. |
| CVE-2023-3114 | HIGH | 7.7 | 0.4% | Jun 22, 2023 | Terraform Enterprise since v202207-1 did not properly implement authorization rules for agent pools, allowing the worksp... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now